Vulnérabilités
Vulnérabilités des apps suivies
15 629 entrées
Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.
| CVE |
|---|
|
CVE-2025-21376
CRITICAL 8.1
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability |
|
CVE-2025-21375
HIGH 7.8
Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability |
|
CVE-2025-21373
HIGH 7.8
Windows Installer Elevation of Privilege Vulnerability |
|
CVE-2025-21371
HIGH 8.8
Windows Telephony Service Remote Code Execution Vulnerability |
|
CVE-2025-21369
HIGH 8.8
Microsoft Digest Authentication Remote Code Execution Vulnerability |
|
CVE-2025-21368
HIGH 8.8
Microsoft Digest Authentication Remote Code Execution Vulnerability |
|
CVE-2025-21367
HIGH 7.8
Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability |
|
CVE-2025-21359
HIGH 7.8
Windows Kernel Security Feature Bypass Vulnerability |
|
CVE-2025-21358
HIGH 7.8
Windows Core Messaging Elevation of Privileges Vulnerability |
|
CVE-2025-21352
HIGH 6.5
Internet Connection Sharing (ICS) Denial of Service Vulnerability |
|
CVE-2025-21351
HIGH 7.5
Windows Active Directory Domain Services API Denial of Service Vulnerability |
|
CVE-2025-21350
HIGH 5.9
Windows Kerberos Denial of Service Vulnerability |
|
CVE-2025-21349
HIGH 6.8
Windows Remote Desktop Configuration Service Tampering Vulnerability |
|
CVE-2025-21347
HIGH 6.0
Windows Deployment Services Denial of Service Vulnerability |
|
CVE-2025-21337
HIGH 3.3
Windows NTFS Elevation of Privilege Vulnerability |
|
CVE-2025-21254
HIGH 6.5
Internet Connection Sharing (ICS) Denial of Service Vulnerability |
|
CVE-2025-21216
HIGH 6.5
Internet Connection Sharing (ICS) Denial of Service Vulnerability |
|
CVE-2025-21212
HIGH 6.5
Internet Connection Sharing (ICS) Denial of Service Vulnerability |
|
CVE-2025-21208
HIGH 8.8
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
|
CVE-2025-21201
HIGH 8.8
Windows Telephony Server Remote Code Execution Vulnerability |
|
CVE-2025-21200
HIGH 8.8
Windows Telephony Service Remote Code Execution Vulnerability |
|
CVE-2025-21190
HIGH 8.8
Windows Telephony Service Remote Code Execution Vulnerability |
|
CVE-2025-21184
HIGH 7.0
Windows Core Messaging Elevation of Privileges Vulnerability |
|
CVE-2025-21183
HIGH 7.4
Windows Resilient File System (ReFS) Deduplication Service Elevation of Privilege Vulnerability |
|
CVE-2025-21182
HIGH 7.4
Windows Resilient File System (ReFS) Deduplication Service Elevation of Privilege Vulnerability |
|
CVE-2025-21181
HIGH 7.5
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability |
|
CVE-2025-21179
HIGH 4.8
DHCP Client Service Denial of Service Vulnerability |
|
CVE-2025-24200
MEDIUM 6.1
KEV
Physique
An authorization issue was addressed with improved state management. This issue is fixed in iOS 15.8.4 and iPadOS 15.8.4, iOS 16.7.11 and iPadOS 16.7.11, iOS 1… |
|
CVE-2024-54658
MEDIUM 6.5
Réseau
The issue was addressed with improved memory handling. This issue is fixed in Safari 17.4, iOS 17.4 and iPadOS 17.4, macOS Sonoma 14.4, tvOS 17.4, visionOS 1.1… |
|
CVE-2024-27859
HIGH 8.8
Réseau
The issue was addressed with improved memory handling. This issue is fixed in iOS 17.4 and iPadOS 17.4, macOS Sonoma 14.4, tvOS 17.4, visionOS 1.1, watchOS 10.… |
|
CVE-2025-21253
MEDIUM 5.3
Réseau 2 apps
Microsoft Edge for IOS and Android Spoofing Vulnerability |
|
CVE-2025-1020
CRITICAL 9.8
Réseau 1 apps
Memory safety bugs present in Firefox 134 and Thunderbird 134. Some of these bugs showed evidence of memory corruption and we presume that with enough effort s… |
|
CVE-2025-1019
MEDIUM 4.3
Réseau 1 apps
The z-order of the browser windows could be manipulated to hide the fullscreen notification. This could potentially be leveraged to perform a spoofing attack. … |
|
CVE-2025-1018
MEDIUM 5.3
Réseau 1 apps
The fullscreen notification is prematurely hidden when fullscreen is re-requested quickly by the user. This could have been leveraged to perform a potential sp… |
|
CVE-2025-1017
CRITICAL 9.8
Réseau 1 apps
Memory safety bugs present in Firefox 134, Thunderbird 134, Firefox ESR 128.6, and Thunderbird 128.6. Some of these bugs showed evidence of memory corruption a… |
|
CVE-2025-1016
CRITICAL 9.8
Réseau 1 apps
Memory safety bugs present in Firefox 134, Thunderbird 134, Firefox ESR 115.19, Firefox ESR 128.6, Thunderbird 115.19, and Thunderbird 128.6. Some of these bug… |
|
CVE-2025-1015
MEDIUM 5.4
Réseau 1 apps
The Thunderbird Address Book URI fields contained unsanitized links. This could be used by an attacker to create and export an address book containing a malici… |
|
CVE-2025-1014
HIGH 8.8
Réseau 1 apps
Certificate length was not properly checked when added to a certificate store. In practice only trusted data was processed. This vulnerability was fixed in Fir… |
|
CVE-2025-1013
MEDIUM 6.5
Réseau 1 apps
A race condition could have led to private browsing tabs being opened in normal browsing windows. This could have resulted in a potential privacy leak. This vu… |
|
CVE-2025-1012
HIGH 7.5
Réseau 1 apps
A race during concurrent delazification could have led to a use-after-free. This vulnerability was fixed in Firefox 135, Firefox ESR 115.20, Firefox ESR 128.7,… |
|
CVE-2025-1011
HIGH 8.8
Réseau 1 apps
A bug in WebAssembly code generation could have lead to a crash. It may have been possible for an attacker to leverage this to achieve code execution. This vul… |
|
CVE-2025-1010
HIGH 8.8
Réseau 1 apps
An attacker could have caused a use-after-free via the Custom Highlight API, leading to a potentially exploitable crash. This vulnerability was fixed in Firefo… |
|
CVE-2025-1009
CRITICAL 9.8
Réseau 1 apps
An attacker could have caused a use-after-free via crafted XSLT data, leading to a potentially exploitable crash. This vulnerability was fixed in Firefox 135, … |
|
CVE-2025-0510
MEDIUM 6.5
Réseau 1 apps
Thunderbird displayed an incorrect sender address if the From field of an email used the invalid group name syntax that is described in CVE-2024-49040. This vu… |
|
CVE-2025-20636
HIGH
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2025-20635
HIGH
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2025-20634
HIGH
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2025-0100
HIGH
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2025-0099
HIGH
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |
|
CVE-2025-0098
HIGH
Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir. |